Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=www.ealuxesolutions.com
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 25, 2025
Valid Until
February 23, 2026
89 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
4C:10:44:3B:5E:B5:BA:30:10:24:9B:C0:AC:EB:26:94:C7:13:17:12:04:55:E8:DC:A5:D8:77:0A:2E:F1:CD:07
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
100 domains
app.kumple.fun
www.3d-ino.com
www.3dstreet.app
ai-rpg.quest
www.aiudalabs.com
sudoku.anglebrackets.app
annongfarm.top
www.arthur-web.dev
www.ashtree.co.za
www.asterr.world
attravels.com.au
www.autoservice-maasland.nl
www.auxswot.com
hlg.balneariopromo.top
behandlo.dk
tennis-admin.bots2work.com
www.canyouflow.com
admin.internal.chatalog.ai
www.hoffmann.co.com
ares-united.co.kr
www.talos.co.kr
admin.iconwealth.co.zw
fnc.codeesoft.fr
deksmo.com
www.dewdwell.com
www.dicing.com.co
impresa.dioporco.it
ditshop.store
firebase.hackman.divint.co.uk
www.ealuxesolutions.com
customer.core.eezy.fi
www.elitefabriccare.in
elsa.video
ptl.emportal.ru
app.evalys.fun
www.ezautorent.app
www.filzquadrat.ch
friendzone.app
app.getclozure.com
uat.pods.globant.com
he-brewscoffee.com
core.hydrogrids.com
www.icansewing.com
fdx.ideacloud.com
sandbox-gb-app.iwarranty.co
jagadishgupta.dev
www.kadenbielenberg.com
kriskringle.co
www.ksintermediacoes.com.br
www.lodocomedy.com
www.lovemealapp.com
www.mackbrowne.com
afspraken.manc.be
www.cv.manuelmezo.com
curso.mazzavelas.com.br
thfirebase-c2.moboreader.net
mrigind.com
naumov.net
birtamode-jhapa.nepaldrivinglicense.site
admin.neverskipfitness.com
portal.nextlead.io
develop.ovenfo.com
imager.palmexus.com
icelantic.parkalot.io
pensivecarding.com
pictapic.com
cliente.pingujuegos.com
webinar.plezmo.com
www.pnwpanorama.com
powerservebb.com
www.raalfeengenharia.com.br
fcookies.rayganancial.com
www.receptchecken.se
www.retrogrademinis.com
www.revivico.com
rhymepage.com
www.robotcontrolparty.com
beit.rodrigopequeno.dev
app.rwatimes.io
hipicos.sellatuparley.com
www.shippo.mn
demo.shuttlecloud.com
authorize.sp2smalaysia.com
st4dium.com
stormlabs.site
www.superwinner.com.au
www.sustainable-africa.com
www.tadpoleteam.com
appstg.teletec-tis.com
dubs.thejmdw.com
epsilonstudio.timp.io
tl-labs.com
app.tomhibbers.com
game.toollife168.com
www.trekksale.se
www.verbater.com
link.vlaamsbelang.org
intranet.worknex.cl
test1000.xenixi.com
ghouse.zedext.com
Other domains in certificate